In an effort to help busy security managers, CISSP Shelley Bard's weekly column builds upon the concept of the perpetual calendar, offering a schedule of reminders for a proactive, strategic security plan. Here are the objectives Shelley prescribes for weeks 9 through 13.
Week 9: Banners in support of system monitoring
Requires Free Membership to View
SearchSecurity.com members gain immediate and unlimited access to breaking industry news, virus alerts, new hacker threats, highly focused security newsletters, and more -- all at no cost. Join me on SearchSecurity.com today!
Michael S. Mimoso, Editorial DirectorObjective: At least annually, review banner statement notifying users that by using the system they consent to monitoring.
Week 10: Are you throwing out company secrets? part 1 -- Physical records
Objective:
Review policy and paper output, and holdings at least annually.
Week 11: Are you throwing out company secrets? part 2 -- Data destruction
Objective: Review data destruction policy at least annually.
Week 12: Your Web site -- Quality of your copyright, privacy policy and links
Objective: Review copyright and privacy policy at least annually; check for broken links quarterly.
Week 13: Social engineering --The low-tech side of high-tech
Objective: Include discussion on social engineering in your corporate-wide security awareness education program.
Weekly Security Planner Schedule
January
February
March
April
May
June
July
August
September
October
November
December
This was first published in December 2004